cleantalk
Vulnerabilities and Security Researches

Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin, CVE-2019-14946

CVE, Research URL

CVE-2019-14946

Published on
Aug 12, 2019
Research Description
The ultimate-member plugin before 2.0.52 for WordPress has XSS related to UM Roles create and edit operations.
Affected versions
max 2.0.52.
Status
vulnerable